From: <bla...@gd...> - 2015-08-02 14:06:02
|
Hi all, I am trying to upgrade from 1.0.2 to 1.5.1... I thought I had all the issues addressed from months of testing. I am having problems revoking a newly created certificate Error while revoking Certificate! OpenCA::OpenSSL returns errorcode 7732073 (OpenCA::OpenSSL->revoke: OpenSSL failed (7777067). Using configuration from /appl/openca-1.5.1/etc/openca/openssl/openssl.cnf ERROR:name does not match /DC=com/DC=gdls/CN=Joe Test/UID=testj error in ca (COMMAND=>ca -revoke /appl/openca-1.5.1/var/openca/tmp/22249_735586754507841529310750_cert.pem -config /appl/openca-1.5.1/etc/openca/openssl/openssl.cnf -keyfile /appl/openca-1.5.1/var/openca/crypto/keys/cakey.pem -passin env:pwd -cert /appl/openca-1.5.1/var/openca/crypto/cacerts/cacert.pem )). I did some research and this appears to be a problem with the openssl database files (index and serial). So I started the rebuild. It starts ok but around where it processes suspended/revoked certificates it bombs out (interesting enough I only have one truly suspended certificate) SUSPENDED_CERTIFICATE: 2200 SUSPENDED_CERTIFICATE: 2201 SUSPENDED_CERTIFICATE: 2212 SUSPENDED_CERTIFICATE: 361A SUSPENDED_CERTIFICATE: 2213 SUSPENDED_CERTIFICATE: FFFFFFFFFFFFFFFF Error Code: 700 The compilation of the command cmdRebuildOpenSSLindexDB failed. Can't call method "getParsed" on an undefined value at /appl/openca-1.5.1/lib/openca/functions/crypto-utils.lib line 576. Help! Dave |